The end of January has finally arrived, it’s been a long month! See out the month with this weeks great selection of Intune content!
Community Content
We start this week with the fourth part of the Windows 365 Automation series from Paul Winstanley and Niall Brady. This one covers how to resize, restore and reprovision your cloud PCs using Graph
Michael Meier has released part 1 of a comprehensive run-through to configure AVD on Azure Stack HCI, starting with connecting your on-prem server ready for AVD deployment
Setup AVD on Azure Local (Azure Stack HCI) in your (Home)Lab – Part 1
If you have ever tried to deploy an MSI only to find it’s in user deployment and system is greyed out, check out this fix from Jóhannes Geir Kristjánsson
Next, Jörgen Nilsson has a very useful remediation script to trigger a re-install of a Win32 app, great for quickly repairing a device
Always a tricky subject as an Intune administrator, Timmy Andersson looks at how to manage your internal Android LOB applications including testing new versions
Oliver Kieselbach has updated the excellent SyncML Viewer with some great new features, including decoding the Autopilot hash
This first part from Sebastian F. Markdanner looks at all of the excellent functionality available in Business Premium licenses and how to use them to secure your tenant. Part one looks at Entra, Defender and general tenant security
Joey Verlinden has updated the Conditional Access Framework with some new policies to review when securing your tenant
Following on from the previous post in the series, Jon Towles continues to look at Windows 11 Kiosk mode, this time covering Shell Launcher and User experience, including the XML and demo videos
On the subject of Kiosks, Jesse Weimer has a script here to hide notifications on the kiosk user account
https://www.getrubix.com/blog/kioskuser0-and-the-orange-dot
Browser extensions are something you definitely want to manage or you’ll end up with a 90s web browser and 300 search bars. Learn how to manage them with Edge in this post from Peter van der Woude
Managing Microsoft Edge browser extensions on Windows devices
This weeks Rudy Ooms deep dive, looks at the functionality behind Administrator Protection and the ShadowAdminPairs key
The ShadowAdminPairs: A Deep Dive into Administrator Protection
Following on from last weeks post covering how to enrol devices with device flow, this one from Rahul Jindal covers how to protect your environment accordingly
https://rahuljindalmyit.blogspot.com/2025/01/authentication-flows-protection-device.html
Niklas Tinner continues the Windows 365 series here, this one looking at troubleshooting your cloud PCs
https://www.oceanleaf.ch/windows-365-troubleshooting/
Next, Dustin Gullett runs through how to setup passkeys for extra secure sign-ins
https://www.getrubix.com/blog/lets-set-up-passkeys-the-easy-secure-way
This post from Kenneth van Surksum compares Entra Global Secure Access to MDE to see how they stack up for web filtering
Video Content
Now onto the video content, starting with two posts from Steve Weiner, the first of which runs through how to configure Windows 365 frontline in Intune
If platform scripts aren’t meeting your needs and you aren’t licensed for remediations, or need scripts to work alongside Win32 apps, packaging them as apps is a great solution and covered in Steve’s second video.
We also have the latest Windows 365 AMA covering Frontline with Christian Montoya, Donna Ryan, Khyati Shah and Go Komatsu
Microsoft Content
This weeks Microsoft content comes from the Intune Support Team and covers new policy implementation and web enrollment for Android work profile
That’s all for this week, have a great weekend!